checklist
241Sagart-cactus/claude-k8s-plugin
Command
Part of k8s
Run the quality and safety checklist for a Kubernetes operator.
2,410 tagged Security, measured the same way as everything else here.
Browse within: compliance 158gdpr 116ai-security 111bug-bounty 90claude-ai 79devsecops 71appsec 61ai-governance 52bugcrowd 49ctf 46offensive-security 44pentesting 43cti 40cybersecurity 38
Sagart-cactus/claude-k8s-plugin
Command
Part of k8s
Run the quality and safety checklist for a Kubernetes operator.
frendysanusi/claude-pentest-skills
Command
Test for a specific vulnerability class against target endpoints using curated payloads.
frendysanusi/claude-pentest-skills
Command
Generate a markdown penetration test report.
frendysanusi/claude-pentest-skills
Command
Define and authorize the target scope for a penetration testing engagement. This is the mandatory first step — all other commands refuse to run without an active scope.
Command Claude Code
Comprehensive dependency health audit with security and license info.
Command Claude Code
Get upgrade recommendations for current dependencies with versions.
Command
Part of hs
Hardstop - Pre-execution safety layer for shell commands. Shows status and help.
gygantskiyMatilyock/ios-developer-agents
Command Claude Code
Run security audit against OWASP Mobile Top 10 2024.
Command
Part of pagokit
Audit an existing PagoKit integration — gitignore, env vars, key prefixes, webhook secret, raw body, replay protection, idempotency, DB schema, minimum events handled.
PaymobAccept/Paymob-AI-Integration-Skill
Command
Part of paymob-integration
Audit a Paymob webhook HMAC verification implementation for correctness and safe failure behavior.
Command
Run Proteus continuous vulnerability research for the current target.
vinvcn/addyosmani-agent-skills-zh
Command Claude Code
Part of agent-skills
A command that reviews code changes across correctness, readability, architecture, security, and performance.
EchoingVesper/mcp-task-orchestrator
Command Claude Code
Transform rough ideas into comprehensive PRDs with rich visual documentation using enhanced context engineering principles and security-first design.
jmanhype/claude-code-plugin-marketplace
Command Claude Code
Review and audit code flagged as suspicious by the monitor.
Command
Part of devkit
Run pre-deployment checks using DevKit skills.
Command
Part of vuln-scout
Run automated static analysis and write the results to .claude/findings.json.
Command
Part of vuln-scout
Prepare a focused analysis scope for large codebases or monorepos using repomix. Creates a digestible snapshot of the target code for subsequent security analysis.
Command
Part of vuln-scout
Combines application understanding with systematic threat identification. First understands the application, then identifies what could go wrong.
Command
Part of agent-guard
Print the gitleaks release sha256 for a version, formatted for direct paste into a GitHub Actions workflow or agent-guard setup --install. Pass an optional VERSION arg, e.g. /agent-guard:checksum 8.30.1.
Command
Part of agent-guard
Run a deterministic one-shot secret scan over the current working tree (staged + unstaged + untracked). Use to confirm "is the current state safe to commit?" without going through hook triggers.
Command
Part of core
Bootstrap a new project with bees task tracking (default) or beads (--beads), mise tooling, CI, and gitleaks security.
Command Claude Code
Read-only AWS + GitHub security-posture audit with a prioritized remediation plan.
Ashfaqbs/software-dev-ai-claude-toolkit
Command
Review uncommitted code changes for quality and security.
Command
Part of just-ship
/just-ship-audit — Paralleles Security- und Quality-Audit via discovered Skills.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: